Apple Macos Sonoma vulnerabilities
960 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 44 of 48
CVE-2025-43355P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43355 [MEDIUM] CVE-2025-43355: macOS Sonoma 14.8
Apple Security Update: About the security content of macOS Sonoma 14.8
Product: macOS Sonoma
Version: 14.8
CVE: CVE-2025-43355
Component: MobileStorageMounter
Impact: An app may be able to cause a denial-of-service
Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2024-23239P4MEDIUMCVSS 4.7v14.42024-03-07
CVE-2024-23239 [MEDIUM] CVE-2024-23239: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23239
Component: Sandbox
Impact: An app may be able to leak sensitive user information
Description: A race condition was addressed with improved state handling.
apple
CVE-2023-27952P4MEDIUMCVSS 4.7v14.62024-07-29
CVE-2023-27952 [MEDIUM] CVE-2023-27952: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2023-27952
Component: Safari
Impact: An app may bypass Gatekeeper checks
Description: A race condition was addressed with improved locking.
apple
CVE-2023-41997P4MEDIUMCVSS 4.6v14.12023-10-25
CVE-2023-41997 [MEDIUM] CVE-2023-41997: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-41997
Component: Siri
Impact: An attacker with physical access may be able to use Siri to access sensitive user data
Description: This issue was addressed by restricting options offered on a locked device.
apple
CVE-2023-41982P4MEDIUMCVSS 4.6v14.12023-10-25
CVE-2023-41982 [MEDIUM] CVE-2023-41982: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-41982
Component: Siri
Impact: An attacker with physical access may be able to use Siri to access sensitive user data
Description: This issue was addressed by restricting options offered on a locked device.
apple
CVE-2024-23275P4MEDIUMCVSS 4.7v14.42024-03-07
CVE-2024-23275 [MEDIUM] CVE-2024-23275: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23275
Component: PackageKit
Impact: An app may be able to access protected user data
Description: A race condition was addressed with additional validation.
apple
CVE-2024-40818P4MEDIUMCVSS 4.6v14.62024-07-29
CVE-2024-40818 [MEDIUM] CVE-2024-40818: macOS Sonoma 14.6
Apple Security Update: About the security content of macOS Sonoma 14.6
Product: macOS Sonoma
Version: 14.6
CVE: CVE-2024-40818
Component: Siri
Impact: An attacker with physical access may be able to use Siri to access sensitive user data
Description: This issue was addressed by restricting options offered on a locked device.
apple
CVE-2024-23251P4MEDIUMCVSS 4.6v14.52024-05-13
CVE-2024-23251 [MEDIUM] CVE-2024-23251: macOS Sonoma 14.5
Apple Security Update: About the security content of macOS Sonoma 14.5
Product: macOS Sonoma
Version: 14.5
CVE: CVE-2024-23251
Component: Mail
Impact: An attacker with physical access may be able to leak Mail account credentials
Description: An authentication issue was addressed with improved state management.
apple
CVE-2023-42843P4MEDIUMCVSS 4.3v14.12023-10-25
CVE-2023-42843 [MEDIUM] CVE-2023-42843: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42843
Component: WebKit
Impact: Visiting a malicious website may lead to address bar spoofing
Description: An inconsistent user interface issue was addressed with improved state management.
apple
CVE-2024-23273P4MEDIUMCVSS 4.3v14.42024-03-07
CVE-2024-23273 [MEDIUM] CVE-2024-23273: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23273
Component: Safari Private Browsing
Impact: Private Browsing tabs may be accessed without authentication
Description: This issue was addressed through improved state management.
apple
CVE-2023-35984P4MEDIUMCVSS 4.3v142023-09-26
CVE-2023-35984 [MEDIUM] CVE-2023-35984: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-35984
Component: Bluetooth
Impact: An attacker in physical proximity can cause a limited out of bounds write
Description: The issue was addressed with improved checks.
apple
CVE-2025-24279P4MEDIUMCVSS 4.3v14.7.52025-03-31
CVE-2025-24279 [MEDIUM] CVE-2025-24279: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24279
Component: Voice Control
Impact: An app may be able to access contacts
Description: This issue was addressed with improved file handling.
apple
CVE-2024-44260P4MEDIUMCVSS 4.4v14.7.12024-10-28
CVE-2024-44260 [MEDIUM] CVE-2024-44260: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44260
Component: Assets
Impact: A malicious app with root privileges may be able to modify the contents of system files
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-43336P4MEDIUMCVSS 4.4v14.8.22025-11-03
CVE-2025-43336 [MEDIUM] CVE-2025-43336: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43336
Component: SoftwareUpdate
Impact: An app with root privileges may be able to access private information
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2023-42952P4MEDIUMCVSS 4.4v14.12023-10-25
CVE-2023-42952 [MEDIUM] CVE-2023-42952: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42952
Component: Automation
Impact: An app with root privileges may be able to access private information
Description: The issue was addressed with improved checks.
apple
CVE-2025-24199P4MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24199 [MEDIUM] CVE-2025-24199: macOS Sonoma 14.7.5
Apple Security Update: About the security content of macOS Sonoma 14.7.5
Product: macOS Sonoma
Version: 14.7.5
CVE: CVE-2025-24199
Component: Foundation
Impact: An app may be able to cause a denial-of-service
Description: An uncontrolled format string issue was addressed with improved input validation.
apple
CVE-2024-27853P4HIGHCVSS 7.8v14.42024-03-07
CVE-2024-27853 [HIGH] CVE-2024-27853: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-27853
Component: CVE-2024-23225
Impact: A maliciously crafted ZIP archive may bypass Gatekeeper checks
Description: This issue was addressed with improved checks.
apple
CVE-2023-41979P4MEDIUMCVSS 4.7v142023-09-26
CVE-2023-41979 [MEDIUM] CVE-2023-41979: macOS Sonoma 14
Apple Security Update: About the security content of macOS Sonoma 14
Product: macOS Sonoma
Version: 14
CVE: CVE-2023-41979
Component: XProtectFramework
Impact: An app may be able to modify protected parts of the file system
Description: A race condition was addressed with improved locking.
apple
CVE-2024-23293P4MEDIUMCVSS 4.6v14.42024-03-07
CVE-2024-23293 [MEDIUM] CVE-2024-23293: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23293
Component: Siri
Impact: An attacker with physical access may be able to use Siri to access sensitive user data
Description: This issue was addressed through improved state management.
apple
CVE-2024-44137P4MEDIUMCVSS 4.6v14.7.12024-10-28
CVE-2024-44137 [MEDIUM] CVE-2024-44137: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44137
Component: Screen Capture
Impact: An attacker with physical access may be able to share items from the lock screen
Description: The issue was addressed with improved checks.
apple